Hello All,
I am looking for a solution to establish a kind of IT inventory, based on logins.
Is there any working solution that matches users to devices they logged into?
Available source is AD and
wineventlog:security
Thank you for any ideas for a solution.
Take a look at this .conf session:
https://conf.splunk.com/watch/conf-online.html?search=sec1624